CVE-2025-9782: TOTOLINK A702R formOneKeyAccessButton sub_4466F8 buffer overflow
A vulnerability was found in TOTOLINK A702R 4.0.0-B20211108.1423. This vulnerability affects the function sub4466F8 of the file /boafrm/formOneKeyAccessButton. Performing manipulation of the argument submit-url results in buffer overflow. The attack may be initiated remotely. The exploit has been made public and could be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9782?
CVE-2025-9782 has a high severity rating due to the potential for remote exploitation leading to a buffer overflow.
How do I fix CVE-2025-9782?
To fix CVE-2025-9782, update your TOTOLINK A702R to the latest firmware version provided by the manufacturer.
Who is affected by CVE-2025-9782?
CVE-2025-9782 affects users of the TOTOLINK A702R router running version 4.0.0-B20211108.1423.
Can CVE-2025-9782 be exploited remotely?
Yes, CVE-2025-9782 can be exploited remotely due to vulnerabilities in the argument processing of the affected function.
What type of vulnerability is CVE-2025-9782?
CVE-2025-9782 is classified as a buffer overflow vulnerability which can lead to arbitrary code execution.